Antivirus
188 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Antivirus, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.
Antivirus CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 5 |
| 2024-11 | 4 |
| 2024-12 | 0 |
| 2025-01 | 1 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 1 |
| 2025-12 | 3 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 1 |
| 2026-09 | 0 |
Severity
How the 188 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical21
- High106
- Medium57
- Low4
Latest CVEs
The 15 most recently published vulnerabilities affecting Antivirus.
- CVE-2026-19193Jiangmin Antivirus Minifilter Port kvcore.sys MessageNotifyCallback access control7.8
- CVE-2025-7073Local Privilege Escalation via Arbitrary File Operation in Bitdefender Total Security7.8
- CVE-2025-7007Null pointer dereference in Avast Antivirus on macOS (16.0.0) or Linux (3.0.3)7.5
- CVE-2025-3500Integer Overflow in Avast Antiviurs 25.1.981.6 on Windows may result in privilege escalation9.0
- CVE-2025-13032Double fetch in sandbox kernel driver in Avast/AVG Antivirus <25.3 on windows allows local attacker to escalate privelages via pool overflow.9.9
- CVE-2024-13206REVE Antivirus reveinstall default permission7.8
- CVE-2024-7236AVG AntiVirus Free icarus Arbitrary File Creation Denial of Service Vulnerability5.5
- CVE-2024-7234AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability7.8
- CVE-2024-7237AVG AntiVirus Free AVGSvc Link Following Local Privilege Escalation Vulnerability7.8
- CVE-2024-7235AVG AntiVirus Free Link Following Denial-of-Service Vulnerability5.5
- CVE-2024-9484An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed xar file to crash the application during file processing.5.1
- CVE-2024-9483Uninitialized variable in digital signiture verification may crash the application5.1
- CVE-2024-9482Out of Bounds write on scan of malformed Mach-O file may crash the application5.1
- CVE-2024-9481Out of Bounds write on scan of malformed eml file may crash the application5.1
- CVE-2024-5803Local privelage escalation via COM hijacking7.5
Product grouping is registry-driven, with AI assist and human review. How it works